I have this experience when I enabled password policy in 389 DS, at first it was working properly but after sometime I encountered a strange problem, when resetting the users password or if the user change password the "passwordexpirationtime" is being reset to "19700101000001Z" and so policy for password expiration stop working.
Version:
389-ds-console-doc-1.2.6-1.el5
389-ds-base-1.2.9.9-1.el5
389-ds-1.2.1-1.el5
389-ds-base-libs-1.2.9.9-1.el5
389-ds-console-1.2.6-1.el5
389-console-1.1.7-3.el5
389-adminutil-1.1.14-1.el5
389-admin-console-1.1.8-1.el5
389-admin-console-doc-1.1.8-1.el5
389-admin-1.1.23-1.el5
389-dsgw-1.1.7-2.el5
ERROR:
22/Apr/2013:05:29:04 +0800] _entry_set_tombstone_rdn - Failed to convert DN cn=cn\3DnsPwPolicyEntry\2Cou\3DPeople\2Cdc\3Dexample\2Cdc\3Dcom\2Cdc\3Dsg to RDN
[22/Apr/2013:05:29:04 +0800] id2entry - str2entry returned NULL for id 579, string="rdn"
22/Apr/2013:05:29:04 +0800] _entry_set_tombstone_rdn - Failed to convert DN cn=cn\3DnsPwTemplateEntry\2Cou\3DPeople\2Cdc\3Dexample\2Cdc\3Dcom\2Cdc\3Dsg to RDN
[22/Apr/2013:05:29:04 +0800] id2entry - str2entry returned NULL for id 580, string="rdn"
[22/Apr/2013:12:00:01 +0800] - cos_cache_query_attr: failed to normalize dn ou=People,dc=example,dc=com,dc. Processing the pre normalized dn.
The problem begun when we modify the password policy (doing a disable and enable)
Thanks
Ryan
-- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users